certificate: implement P_SHA1() to compute key